Managing DLP rules in the Virtru dashboard

As a Virtru administrator, you can leverage Virtru's DLP rules to dictate how Virtru will behave when certain content is found in your users' outgoing emails. You'll configure and manage these rules from the Virtru Dashboard's Rulespage.

The different types of rule and their associated actions are described below.

Text Pattern Rules

The rules listed under "When I type these text patterns..." use Regular Expressions (RegEx) to match consistently formatted number and text patterns. The default patterns included with Virtru are Social Security Number, Credit Card Number, IP Address, Federal Employee Identification Number (EIN), and Possibly Sensitive.

Social Security Number: Triggers on any number string that could potentially be a Social Security Number.

Credit Card Number: Triggers on any number string that could potentially be a Credit Card Number.

IP Address: Triggers on any number string that could potentially be an IP Address.

Federal Employee Identification Number (EIN): Triggers on any number string that could potentially be a Federal Employee Identification Number (EIN).

Possibly Sensitive: A more generic rule than the others; will flag a variety of different number patterns. This may result in a high volume of false-positive flags, so only use this rule if your needs can't be met with other rule options.

Keyword Rules

Rules in the "When I type these keywords..." section are triggered by a precise match with a listed keyword (with one exception - see below). You can add your own keywords to this list by clicking the + icon in the bottom row. A list of keywords can be added at once by comma-separating the entries.

Exception

In addition to the phrase "non disclosure agreement", the Non Disclosure Agreement rule will trigger on "nda", "n.d.a.", and "non-disclosure agreement".

Recipient Rules

The "When I send to..." section allows you to specify an action based on the recipient of the email. This can be configured either by exact email address or by domain name. Email addresses and domains cannot be added in bulk; entering a list will result in only the first item being added to your rules.

Rule Actions

Rules in the Text Patterns, Keywords, and Recipients sections can be assigned one of three possible actions to take when the rule is triggered.

Encrypt Email:

An Encrypt rule will encrypt the email automatically as soon as the user hits Send. They'll see the Virtru encryption animation without any option to have the email go out unencrypted.

Warn Me:

A rule set to Warn will trigger an alert to the end user when they click "Send". The warning dialog will highlight the offending content as well as list the rule and its description. The end user has the option to either send the message encrypted, or disregard the warning and send unencrypted.

Ignore:

An Ignore rule will take no noticeable action on an outgoing email. If the email is being sent unencrypted, the rule will have no effect at all. If the email is sent encrypted, however, any Ignore rules triggered by that email will be logged in that email's Validation Report in the Virtru Dashboard.

Note

Ignore rules cannot be used to override or create exceptions to other rules; they simply do not take an action. For example, a rule set to ignore the Social Security number 123-45-6789 will not prevent that sequence from being flagged by another SSN rule.

Custom Rules

To perform more complex DLP operations - including multiple scan parameters, multiple actions, and additional action types - you'll want to use a Custom Rule. Find more information on creating Custom Rules at the link below: